Hacking Exposed Web 2.0: Web 2.0 Security Secrets and Solutions
Rich Cannings, Himanshu Dwivedi, Zane Lackey
- 出版商: McGraw-Hill Education
- 出版日期: 2008-01-07
- 定價: $1,750
- 售價: 8.0 折 $1,400
- 語言: 英文
- 頁數: 258
- 裝訂: Paperback
- ISBN: 0071494618
- ISBN-13: 9780071494618
-
相關分類:
資訊安全、駭客 Hack
立即出貨 (庫存=1)
買這商品的人也買了...
-
$2,320$2,204 -
$580$493 -
$550$468 -
$490$417 -
$1,225MCTS Self-Paced Training Kit (Exam 70-529): Microsoft .NET Framework 2.0 Distributed Application Development
-
$980$960 -
$1,380Cross Site Scripting Attacks: Xss Exploits and Defense
-
$1,550$1,473 -
$840Intrusion Alert: An Ethical Hacking Guide to Intrusion Detection
-
$1,370$1,302 -
$1,600$1,520 -
$1,180$1,003 -
$1,920C++ GUI Programming with Qt 4, 2/e (Hardcover)
-
$450$351 -
$1,170$1,112 -
$250SOA權威指南:通過BEA AquaLogic Service Bus實現
-
$550$435 -
$650$553 -
$580$493 -
$590$531 -
$580$493 -
$380$323 -
$1,650$1,568 -
$250網絡攻防原理與技術(第2版)
-
$480$379
商品描述
Description
Lock down next-generation Web services
"This book concisely identifies the types of attacks which are faced daily by Web 2.0 sites, and the authors give solid, practical advice on how to identify and mitigate these threats." --Max Kelly, CISSP, CIPP, CFCE, Senior Director of Security, Facebook
Protect your Web 2.0 architecture against the latest wave of cybercrime using expert tactics from Internet security professionals. Hacking Exposed Web 2.0 shows how hackers perform reconnaissance, choose their entry point, and attack Web 2.0-based services, and reveals detailed countermeasures and defense techniques. You'll learn how to avoid injection and buffer overflow attacks, fix browser and plug-in flaws, and secure AJAX, Flash, and XML-driven applications. Real-world case studies illustrate social networking site weaknesses, cross-site attack methods, migration vulnerabilities, and IE7 shortcomings.
- Plug security holes in Web 2.0 implementations the proven Hacking Exposed way
- Learn how hackers target and abuse vulnerable Web 2.0 applications, browsers, plug-ins, online databases, user inputs, and HTML forms
- Prevent Web 2.0-based SQL, XPath, XQuery, LDAP, and command injection attacks
- Circumvent XXE, directory traversal, and buffer overflow exploits
- Learn XSS and Cross-Site Request Forgery methods attackers use to bypass browser security controls
- Fix vulnerabilities in Outlook Express and Acrobat Reader add-ons
- Use input validators and XML classes to reinforce ASP and .NET security
- Eliminate unintentional exposures in ASP.NET AJAX (Atlas), Direct Web Remoting, Sajax, and GWT Web applications
- Mitigate ActiveX security exposures using SiteLock, code signing, and secure controls
Find and fix Adobe Flash vulnerabilities and DNS rebinding attacks
Table of Contents
Foreword
Acknowledgments
Introduction
Part I: Attacking Web 2.0
Chapter 1. Common Injection Attacks
Chapter 2. Cross-Site Scripting
Part II: Next Generation Web Application Attacks
Chapter 3. Cross-Domain Attacks
Chapter 4. Malicious JavaScript and AJAX
Chapter 5. .Net Security
Part III: AJAX
Chapter 6. AJAX Types, Discovery, and Parameter Manipulation
Chapter 7. AJAX Framework Exposures
Part IV: Thick Clients
Chapter 8. ActiveX Security
Chapter 9. Attacking Flash Applications
Index